Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Jan. 8, 2025, 12:02 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
21 7.8 重要
Local
Telerik ui for wpf Telerik の ui for wpf における信頼できないデータのデシリアライゼーションに関する脆弱性 New CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2024-10012 2025-01-8 11:28 2024-11-13 Show GitHub Exploit DB Packet Storm
22 4.8 警告
Network
IBM IBM WebSphere Application Server IBM の IBM WebSphere Application Server におけるクロスサイトスクリプティングの脆弱性 New CWE-79
CWE-79
CVE-2024-45073 2025-01-8 11:03 2024-09-30 Show GitHub Exploit DB Packet Storm
23 4.4 警告
Local
IBM IBM Security Guardium Key Lifecycle Manager IBM の IBM Security Guardium Key Lifecycle Manager におけるログファイルからの情報漏えいに関する脆弱性 New CWE-532
ログファイルからの情報漏えい
CVE-2024-49816 2025-01-8 11:03 2024-11-7 Show GitHub Exploit DB Packet Storm
24 5.3 警告
Network
- IBM の IBM Aspera Orchestrator における観測可能な不一致に関する脆弱性 New CWE-203
CWE-204
CVE-2023-27283 2025-01-8 11:02 2023-02-27 Show GitHub Exploit DB Packet Storm
25 5.5 警告
Local
IBM IBM SPSS Statistics IBM の IBM SPSS Statistics における脆弱性 New CWE-399
CWE-noinfo
CVE-2022-43855 2025-01-8 11:01 2022-10-26 Show GitHub Exploit DB Packet Storm
26 7.5 重要
Network
IBM IBM Cognos Controller IBM の IBM Cognos Controller における暗号アルゴリズムの使用に関する脆弱性 New CWE-327
不完全、または危険な暗号アルゴリズムの使用
CVE-2020-4874 2025-01-8 11:00 2024-05-1 Show GitHub Exploit DB Packet Storm
27 5.3 警告
Network
IBM IBM Cognos Controller IBM の IBM Cognos Controller における観測可能な不一致に関する脆弱性 New CWE-203
CWE-204
CVE-2021-20556 2025-01-8 10:50 2024-05-1 Show GitHub Exploit DB Packet Storm
28 5.3 警告
Network
IBM IBM Cognos Controller IBM の IBM Cognos Controller におけるスプーフィングによる認証回避に関する脆弱性 New CWE-290
CWE-350
CVE-2022-22364 2025-01-8 10:50 2022-01-3 Show GitHub Exploit DB Packet Storm
29 7.5 重要
Network
IBM IBM Cognos Controller IBM の IBM Cognos Controller における暗号アルゴリズムの使用に関する脆弱性 New CWE-327
不完全、または危険な暗号アルゴリズムの使用
CVE-2023-40696 2025-01-8 10:50 2023-08-18 Show GitHub Exploit DB Packet Storm
30 4.3 警告
Network
IBM IBM App Connect Enterprise IBM の IBM App Connect Enterprise における制限またはスロットリング無しのリソースの割り当てに関する脆弱性 New CWE-770
CWE-770
CVE-2024-28760 2025-01-8 10:50 2024-05-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Jan. 8, 2025, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
276341 - tolis_group bru xbru in BRU Workstation 17.0 allows local users to overwrite arbitrary files and gain root privileges via a symlink attack on the xbru_dscheck.dd temporary file. NVD-CWE-Other
CVE-2002-1512 2008-09-6 05:30 2003-04-2 Show GitHub Exploit DB Packet Storm
276342 - compaq tcp-ip_services The UCX POP server in HP TCP/IP services for OpenVMS 4.2 through 5.3 allows local users to truncate arbitrary files via the -logfile command line option, which overrides file system permissions becau… NVD-CWE-Other
CVE-2002-1513 2008-09-6 05:30 2003-04-2 Show GitHub Exploit DB Packet Storm
276343 - borland_software interbase gds_lock_mgr in Borland InterBase allows local users to overwrite files and gain privileges via a symlink attack on a "isc_init1.X" temporary file, as demonstrated by modifying the xinetdbd file. NVD-CWE-Other
CVE-2002-1514 2008-09-6 05:30 2003-04-2 Show GitHub Exploit DB Packet Storm
276344 - coolforum coolforum Directory traversal vulnerability in avatar.php in CoolForum 0.5 beta allows remote attackers to read arbitrary files via .. (dot dot) sequences in the img parameter. NVD-CWE-Other
CVE-2002-1515 2008-09-6 05:30 2003-04-2 Show GitHub Exploit DB Packet Storm
276345 - sgi freeware
irix
fsr_efs in IRIX 6.5 allows local users to conduct unauthorized file activities via a symlink attack, possibly via the .fsrlast file. NVD-CWE-Other
CVE-2002-1517 2008-09-6 05:30 2003-04-2 Show GitHub Exploit DB Packet Storm
276346 - sgi irix mv in IRIX 6.5 creates a directory with world-writable permissions while moving a directory, which could allow local users to modify files and directories. NVD-CWE-Other
CVE-2002-1518 2008-09-6 05:30 2003-04-2 Show GitHub Exploit DB Packet Storm
276347 - rapidstream
watchguard
rapidstream
firebox
Format string vulnerability in the CLI interface for WatchGuard Firebox Vclass 3.2 and earlier, and RSSA Appliance 3.0.2, allows remote attackers to cause a denial of service and possibly execute arb… NVD-CWE-Other
CVE-2002-1519 2008-09-6 05:30 2003-04-2 Show GitHub Exploit DB Packet Storm
276348 - rapidstream
watchguard
rapidstream
firebox
The CLI interface for WatchGuard Firebox Vclass 3.2 and earlier, and RSSA Appliance 3.0.2, does not properly close the SSH connection when a -N option is provided during authentication, which allows … NVD-CWE-Other
CVE-2002-1520 2008-09-6 05:30 2003-04-2 Show GitHub Exploit DB Packet Storm
276349 - mdg_computer_services web_server_4d Web Server 4D (WS4D) 3.6 stores passwords in plaintext in the Ws4d.4DD file, which allows attackers to gain privileges. NVD-CWE-Other
CVE-2002-1521 2008-09-6 05:30 2003-04-2 Show GitHub Exploit DB Packet Storm
276350 - cooolsoft powerftp Buffer overflow in PowerFTP FTP server 2.24, and possibly other versions, allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long USER argument. NVD-CWE-Other
CVE-2002-1522 2008-09-6 05:30 2003-04-2 Show GitHub Exploit DB Packet Storm